[prev in list] [next in list] [prev in thread] [next in thread] 

List:       strongswan-users
Subject:    [strongSwan] connection gets disconnected
From:       andreas.steffen () strongsec ! net (Andreas Steffen)
Date:       2004-10-19 21:18:15
Message-ID: 4175686E.5080902 () strongsec ! net
[Download RAW message or body]

When a connection is renegotiated then it is normal that the old
IPsec SA is deleted when it expires. This event is communicated
to the peer side by means of a Delete SA payload. So what you
observe is totally normal behaviour. What you seem to experience
is a failure to rekey the connection. In order to analyze this
I would need a log with

   plutodebug="control lifecycle"

in ipsec.conf enabled.

Regards

Andreas

Alexandru Molodoi wrote:
> I have an IPsec gateway and several roadwarrior clients.
>>From time to time the road-warrior gets disconnected, and he must
> reconnect manually.
> 
> I get this in the error log:
> 
> received Delete SA payload: deleting IPSEC State #123 
> 
> 
> Is this because of a setting in FreeSWAN?
> I want to make the renegociations transparent to the user.
> 
> Please help.
> 
> Alexandru.

=======================================================================
Andreas Steffen                   e-mail: andreas.steffen@strongsec.com
strongSec GmbH                    home:   http://www.strongsec.com
Alter Z?richweg 20                phone:  +41 1 730 80 64
CH-8952 Schlieren (Switzerland)   fax:    +41 1 730 80 65
==========================================[strong internet security]===

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic